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(57) A system for issuing authentication data based 
on a specific time transmits authentication data formed 
sequentially with the lapse of time counted by a specific 
time generating device (6) from a reference computer 
(1) to intermediate-order computers (2 A) as shown in 
the Figure. To the authentication data, the low-order 
computers (2A) and low-order computers (3A) add spe- 
cific authentication data successively and transmit the 
resultant data to the lowest-order vending machines. A 
computer of the vending machine (5) adds specific data 
to the transmitted data, and generates and issues spe- 
cific authentication data, and stores them in a prepaid 



card (20). At the same time, reversely to the above proc- 
ess, the specific authentication data are transmitted to 
the reference computer (1) and are lastly registered in 
the reference computer (1). When such an issued pre- 
paid card (20) is used in a pachinko (pin-ball game) 
machine in a pachinko parlor affiliated to the reference 
computer (1), the pachinko machine reads the specif ic 
authentication data stored in the card, refers to the ref- 
erence computer for the read data, and collates and 
authenticates it 
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Description 
TECHNICAL FIELD 

[0001] The present invention relates to an authentica- 
tion data Issuing system based on unique time genera- 
tion, a recording media for storing authentication data 
issued by the authentication-data issuing system and 
an authentication data verifying system, which exercise 
general control of inforrmtion issued by particular com- 
puters, verify authentication data issued by some of the 
computers and tiiereby effectively avoid damages that 
would be caused by any person stealing the authentica- 
tion data. 

PA C K gRO U NP AR T 

[0002] Today, various prepaid cards, each prestoring 
money amount information corresponding to a certain 
amount of money paid in advance, are being widely 
used in various commercial transactions, such as tor 
using railroad fadlities and public telephones and play- 
ing witii Japanese pinball (hereinafter "pachinko*^ game 
machines. These prepaid cards are inserted into card 
reader/writers attached to or contained in various 
pieces of equipment, such as automatic ticket checkers, 
automatic ticket vending machines, public telephones 
and game machines, where each amount due is suk>- 
tracted from the remaining balance on the card and the 
prestored money amount information is rewritten 
accordingly. 

[0003] Besides, in various banking agencies and the 
like, account transfer services using personal comput- 
ers and put>lic telephone lines have come into wide use. 
and it is expected that every banking and cunrency set- 
tlement service will be conducted through an electronic 
currency system in the near future (as disclosed in, for 
example, Japanese Patent Publication No. HEI-7- 
11723). 

[0004] Recentiy, an increasing number of persons 
have been attempting to tamper or copy the stored data 
on tiie prepaid cards without due autiiorization. so that 
prepaid card issuing companies are exercising, against 
such fraudulent attempts, preventive measures that 
include encryption and scrambling of the stored data. In 
the account trar^fer and various electronic business 
transactions, many persons have been attempting to 
acquire other person*s autiientication data in a fraudu- 
lent manner, in order to make unfair benefits by pretend- 
ing to be the true prepaid card holder. 

DISCLOSURE OF THE INVENTION 

[0005] The present invention has been made in view 
of such inconveniences encountered by prior tech- 
niques and seeks to provide an improved technique 
which, using a unique time generating device previously 
proposed by the applicant of the present application (in 



PCT/JP/02433), can effectively avoid damages that 
wouki be caused by any person stealing authentication 
data. 

[0006] In order to acconpiish the above-mentioned 

5 ot^ect, the present invention provides an authentication- 
data issuing syst&n based on unique time, the authen- 
tication-data issuing system including a plurality of com- 
puters connected with each other via convnunication 
lines with one of the computers set to function as a mas- 

10 ter computer, the master computer comprising: a 
unique time generating device including time keeping 
means for sequentially outputting unit time values at 
predetermined intervals over a preset time-measuring 
period that begins at a given start point on a selected 

15 date and terminates at a given future end point arxj 
accumulating means for sequentially accumulating the 
unit time values output by the time keeping means so as 
to constantiy measure a changing elapsed time within 
the time-measuring period: transmitter means for. dur- 

20 ing communication between the master computer and 
another of the computers subservient to the master 
computer, transmitting, from the master computer to the 
subservient computer, authentication data based on an 
elapsed time measurem&it. corresponding to a given 

25 time point, indicated by the unique time generating 
device; and register means for receiving and registering 
an issuance history of unique authentication data cre- 
ated and issued by tiie subservient corrputer imparting 
additional data, unique to the subservient computer, to 

30 the authentication data transmitted by the master com- 
puter. 

[0007] According to another aspect of the present 
invention, tiiere is prcvkjed an authentication-data issu- 
ing system based on unique time, the authentication- 

35 data issuing system including a plurality of computers 
connected with each other via communication lines with 
one of the computers set to function as a master com- 
puter, the master computer including a unique time gen- 
erating device including time keeping means for 

40 sequentially outputting unit time values at predeter- 
mined intervals over a preset time-measuring period 
that begins at a given start point on a selected date and 
terminates at a given future end point and accumulating 
means for sequentially accumulating the unit time val- 

45 ues output by tiie time keeping means so as to con- 
stantiy measure a changing elapsed time within tiie 
time-measuring pe-iod. Each of the computers subser- 
vient to the master computer comprises: receiver 
means for. during comrrunication with the master conv 

50 puter, receiving authentication data based on an 
elapsed time measurement, corresponding to a given 
time point, indicated by the unique time generating 
device of the master conputer; issuer means for creat- 
ing and issuing unique autiientication data by imparting 

55 additional data, unique to the subservient computer, to 
the authentication data received via the receiver means 
from the master computer; and transmitter means for 
transmitting, to the master computer, an issuance his- 
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tory of the unique authentication data aeated and 
issued by the issuer means. 

[0008] According to still another aspect of the present 
invention, there is provided an authentication-data issu- 
ing system based on unique time, the authentication- 
data issuing system indiding a plurality of computers 
connected witii each other via communication lines with 
one of the conr^uters set to function as a master com- 
puter, where each of the computers subsennent to the 
master computer comprises: a unique time generating 
device including time keeping means for sequentially 
outputting unit time values at predetermined intervals 
over a preset time-measuring period unique to the com- 
puter tiiat begins at a given start point on a selected 
date and terminates at a given future end point and 
accumulating means for sequentially accumulating the 
unit time values output by the time keeping means so as 
to constantiy measure a changing elapsed time within 
the time-measuring period: issuer means for creating 
and issuing unique authentication data, peculiar to the 
subservient computer, on the basis of an elapsed time 
measurement indicated by the unique time generating 
device: and transmitter means for transmitting, to the 
master computer, an issuance history of the unique 
authentication data aeated arrd issued by the issuer 
means. 

[0009] According to still another aspect of the present 
invention, there is provided an authentication-data issu- 
ing system based on unique time, the authentication- 
data issuing system including a plurality of computers 
connected with each other via communication lines with 
one of the computers set to function as a master con> 
puter. Each of the computers subservient to the master 
computer comprises a unique time generating device 
including time keeping means for sequentially output- 
ting unit time values at predetermined intervals over a 
preset time-measuring period unique to the computer 
tiiat begins at a given start point on a selected date and 
terminates at a given future end point and accumulating 
means for sequentially accumulating the unit time val- 
ues output by the time keeping means so as to con- 
stantly measure a changing elapsed time within the 
time-measuring period. The master computer, exercis- 
ing general control of the subservient computers, 
includes register means for receiving and registering an 
issuance history of data created and issued by each of 
the subservient computers on the basis of an elapsed 
time measurement indicated by the unique time gener- 
ating device of the subservient computer. 
[001 0] According to still another aspect of tiie present 
invention, there is provided a recording media having 
stored thereon unique authentication data created by 
any one of the subservient computers, and the record- 
ing media is issued by the subservient computer. 
[001 1 ] According to still another aspect of the present 
invention, there is provided an authentication-data veri- 
fying system including a plurality of computers con- 
nected with each otiier via communication lines with 



one of the computers set to function as a master com- 
puter. Each of the computers subservient to the master 
computer conrprises: reading means for reading unique 
authentication data issued by any one of tiie subservi- 

5 ent conrtputers on tiie basis of infomiation received from 
anoth^ of the ^ibservient computers, or reading 
unique authentication data issued by any one of the 
subservient computers and recorded on a recording 
media: transmitter means for transmitting tiie unique 

10 authentication data read by tiie reading means to the 
master computer for sii>sequent collation tiiereby: and 
receiver means for receiving from the master computer 
a result of collation between an issuance history of ttie 
unique authentication data by eadi of the 8ut>servient 

75 computers registered in the master computer and the 
unique authentication data transmitted by tiie ti^nsmit- 
ter means. 

[001 2] Accorcfing to still another aspect of the present 
invention, there is provided an autiientication-data veri- 

20 tying system including a plurality of computers con- 
nected witii each other via communication tines with 
one of the computers set to function as a master com- 
puter, where the master computer comprises: receiver 
means for receiving unique autiientication data trans- 

25 mitted by b-ansmitter means of any one of the comput- 
ers subservient to the n^ster computer, the unique 
authentication data being issued by the sut)servient 
computer and read by reading means of the subservient 
computer; and collator means for collating between the 

30 unique authentication data received by tiie receiver 
means and an issuance history of the unique authenti- 
cation data by each of the subservient computers that is 
registered in the master computer; and transmitter 
means for transmitting a result of collation by tiie colla- 

35 tor means to receiver means of tiie subservient compu- 
ter. 

DESCRIPTION OF THE DRAWINGS 
40 [0013] 

Fig. 1 is a network diagram illusti'ating an auttienti- 
cation-data issuing system, according to a best 
mode of carrying out tiie present invention, for issu- 
45 ing prepaid cards to be used for pachinko game 
machines; 

Fig. 2 is a block diagram illustrating a general setup 
of a unique time generating device employed in the 
authentication-data issuing system of Fig. 1 ; 

50 Fig. 3 is a diagram explanatory of a manner in 
which an elapsed time is measured in accordance 
with the best mode of the present invention; 
Rg. 4 is a diagram showing examples of different 
time-measuring periods assigned to a plurality of 

55 unique time generating devices provided in a plural- 
ity of computers; 

Rg. 5 is a diagram showing otiier examples of dif- 
ferent time-measuring periods assigned to other 
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unique time generating devices: 
Rg. 6 Is a block diagram Illustrating a general 
organization of a master computer shown In Fig. 1 : 
Rg. 7 is a diagram illustrating contents of authenti- 
cation data transmitted from the master computer 
of Rg. 1; 

Rg. 8 is a block diagram illustrating a general 
organization of a card distributor's computer of Rg. 
1; 

Rg. 9 Is a diagram illustrating contents of authenti- 
cation data issued from a card distributor's compu- 
ter to a pachinko house of Rg. 1 : 
Rg. 1 0 Is a diagram illustrating a processing flow for 
creating unique authentication data: 
Rg. 11 is a block diagram illustrating a general 
organization of a pachinko game machine shewn in 
Rg. 1; 

Rg. 1 2 is a diagram illustrating a processing flow for 
creating unique-authentication-data updating: 
Rg. 13 is a diagram illustrating contents of informa- 
tion presented on a display means when a card is 
used with updated data; 

Rg. 14 is a diagram illustrating a hierarchical net- 
work of an authentication-data Issuing system 
according to Example 1 installed within a company: 
Rg. 15 is a block diagram illustrating a general 
organization of a master computer shown in Rg. 
14; 

Rg. 16 is a block diagram illustrating a general 
organization of a lower-level computer subservient 
to the master computer shown in Rg. 14; 
Fig. 17 is a diagram Illustrating a hierarchical net- 
work of an autiientication-data issuing system 
according to Example 2; 

Fig. 18 is a diagram Illustrating a hierarchical net- 
work of an authentication-data issuing system 
according to Example 3; 

Fig. 19 is a diagram illustrating a hierarchical net- 
work of an autiientication-data issuing system 
according to Example 4; and 
Fig. 20 is a diagram Illustrating a hierarchical net- 
work of an autiientication-data issuing system 
according to Example 5. 

BEST MODE FOR CARRYING OUT THE INVENTION 

[0014] In PCT Patent Application No PCT/JP/D2433 
filed at an earlier date, the applicant of the present appli- 
cation proposed a unique time generating device and 
fully explained the concept of "unique time** generated 
by the de^ce. Unlike the today's commonly-used time 
concept based on Greenwich Mean Time, the "unique 
time" is a time concept to linearly count a preset finite 
time period from the zeroth toward the last second 
thereof, i.e., to constantiy a measure changing elapsed 
time toward the last second within the preset time- 
measuring period. 

[001 5] On the basis of such a unique time concept, the 



present invention provides for authentication of a given 
computer on a comnruinication network or authentica- 
tion of a recording media storing th^eon auth^cation 
data issued by a given computer on the oonrvnunication 

5 network. Rrst. tiie present invention will be described 
hereinbelow in relation to a system for issuing and 
authenticating prepaid cards for use In Japanese pn- 
ball. i.a. "pachinko". game machines equipped with 
card readers (comnrK>nly known as CR-type pachinko 

TO game machines). 

[0016] In Fig. 1, reference rujmeral 1 represerrts a 
highest-level master computer of an original card Issuer 
conipany that issues prepaid cards (prepaid pachinko 
cards), to which are connected, via network lines, sub- 

15 servient second-level conrtputers 2A. 2B. 20 2n of 

card distributor conpanies. Further, to the second-level 
computers 2A. 2B, 20 2n of the card distributor com- 
panies are connected host computers (such as those 
denoted at 3A, 3B 3n) of affiliated pachinko houses. 

20 In each of the pachinko houses, the host computer 
(such as 3A) collectively manages or exercising general 
control of Individual pachinko (OR-type) pachinko game 
machines 4 and prepaid card vending machines 5 
located within the house. In addition. In each of the 

25 pachinko houses, third-level computers are provided 
witiiin or connected with the host computer (such as 
3A). 

[0017] The above-mentioned highest-level master 
computer 1 implements a unique time generating 

30 device 6 as shown in Fig. 2 by arranging its CPU 7 to 
provide a time keeping means 9 and accumulating 
means 1 0 and also setting a memory 8 to include a stor- 
age means 11 for storing a preset time-measuring 
period and a renewal means 12 for renewing the time- 

35 measuring period. Total time value to be counted over 
the preset time-measuring period may be optionally set. 
for example, to conrespond to a total value of seconds 
over a period of ten or 100 years, and every elapsed 
time witiiin the preset time-measuring period is meas- 

40 ured by the time keeping means 9 constantly counting 
the total time value. For example, the total time values 
for one. ten and 100 years will be as follows: 

Total time value to be counted over a one year 
45 period = 31.556.925.9747 seconds (one year = 
365.2425 days): 

Total time value to be counted over a ten year 
period = 315.659.250.9747 seconds; and 
Total time value to be counted over a 100 year 
50 period = 3. 1 55.692.500.9747 seconds 

[0018] Here, the "total time value to be counted' is 
expressed in time units of 1/10,000 second measured 
by an atomic clock (cesium clock), and a "unique time" 
55 is given by constantiy counting the total time value to 
identify a changing elapsed time within the preset time- 
measuring period. Elapsed time (unique time measure- 
ment) is typically calculated from both an accumulated 
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time and a subtracted time, as shown in Ftg. 3. Specifi- 
cally, the accumulated time is a time value measured 
fofward or incrementally from the z^oth second toward 
the total time value to be courtted. while the subtracted 
time is a time value measured rearward or decremen- 
tally from the total time value toward the zeroth second. 
Alternatively, a unique time measurement may be calcu- 
lated from either the accumulated time or the siistracted 
time or by adding some variable to the time value. 
[001 9] The accumulating means 1 0 sequentially accu- 
mulates successive unit time values measured the time 
keeping means 9; that is. the accumulating means 10 
calculates an accumulated time Tn from the zeroth sec- 
ond toward the last second of the total time value It to 
be counted as well as a subtracted time from the last 
second toward the zeroth second (Tt - Tn). so as to con- 
stantiy provide a changing elapsed time within the pre- 
set time-measuring period (see Rg. 3). Once the time 
value accumulated by the accumulating means 10 has 
reached the predetermined total time value to be 
counted T! (i.e.. once the counting of all the seconds in 
tiie 100 year period has been completed), the time 
period renewal means 12 in the memory 8 is activated 
to renew tiie time-measuring period for another 100 
years and instructs the time keeping means 9 to count 
the renewed time-measuring period. In this way. the 
unique time generating device provided in tine computer 
is updated once for every 100 years. 
[0020] Similar unique time generating device is pro- 
vided in each of tiie second-level computers 2A, 2B 

2n of card distoibutor companies A to n directiy con- 
nected to or subservient to the highest-level master 

computer 1 , the third-level computers 3A, 3B 3n of 

the pachinko houses connected to the second-level 

computers 2A. 2B 2n and tiie fourtii-level computers 

of the individual pachinko game machines 4 and pre- 
paid card vending machines 5 connected to the third- 
level computers 3A. 38. .... 3n. All these unique time 
generating devices provided in the above-mentioned 
computers are set to indicate unique elapsed time 
measurements, different from each other, at every given 
point. For example, as seen from "product 1" to "product 
n" in Fig. 4. the unique time generating devices are 
sequentially produced, at intervals of. for example, one 
second, and ttiey are set to start measuring time at dif- 
ferent points that depend on the production intervals 
and tiius differ in measured elapsed time from each 
other by one second; for the same reason, they are set 
to end measuring time at different points that are dis- 
placed from each other by one second due to the differ- 
ences of tiieir time-measurement start points, although 
the total time value to be counted Tt. i.e., the lengtii of 
the time-measuring period (e.g.. 3.155.692,500.97 sec- 
onds), is the same for all the products, i.e.. unique time 
generating devices. Alternatively, the length of the time- 
measuring period may be made different among these 
products or unique time generating devices. As shown 
in Fig. 5, the unique time generating device 6 provided 



in the master computer 1 may t>e set as a master device 
and the total time values Tt of product 1 to product n 
sequentially produced or supplied on tiie basts of 
unique time generation by tiie master device may be set 

5 to progressively become great relative to that of the 
master device in such a way that each of the products 
has a total time value Tl greater by one second than that 
of the preceding product It may be assumed ttiat all 
these unique time generating devices including the 

10 master device are caused to start measuring time like a 
stopwatch. This way. all the unique time generating 
devices including the master device are allowed to start 
measuring at a same start point up to their unique total 
time values (i.e.. up to tiie end of different time-measur- 

15 ing periods); thus, tiiey stop tiie counting at different end 
points that will sequentially arrive every second. As a 
result, all the unique time generating devices indicate 
different elapsed time measurement at every given time 
point within tiie different time-measuring periods, as 

20 shown in Rg. 5. 

[0021] As clearly shown in Fig. 6. tiie highest-level 
master computer 1 includes a transmitter means 13 that 

transmits, to tiie respective computers 2A, 28 2n of 

the card disti-ibutor conpanies, authentication data 

25 based on an elapsed time measurement at a given time 
point indicated by the unique time generating device 6 
thereof. Let*s assume here that the master computer 1 
generates original authentication data X1a, X2a and 
X3a (Rg. 7) corresponding to elapsed times measured 

30 by the unique time generating device 6 and sequentially 
issues tiiese original authentication data XI a, X2a and 
X3a to one of tiie second-level computers (e.g., compu- 
ter 2A). Specifically, each of the thus-issued original 
authentication data XI a. X2a and X3a is transmitted to 

35 tfie second-level computer (e.g., computer 2A), where it 
is used as identification (ID) data to authorize issuance 
of a prepaid card, i.e., issuance-authorizing identifica- 
tion data (see Rg. 7). 

[0022] More specifically, each of the original authenti- 

40 cation data XI a. X2a and X3a transmitted by ttie trans- 
mitter means 13 of the master computer 1 is received by 
tiie second-level computer of one of the card distribu- 
tors requesting tiie issuance (e.g., card distributor A). 
As shown in Fig. 8. this second-level conputer 2A of 

45 card distributor A also includes a CPU 1 5, a memory 1 6 
having provided tiierein the unique time generating 
device 2A6, a receiver means 17 and a transmitter 
means 18. Each of the original autiientication data XI a. 
X2a and X3a received by the receiver means 17 of the 

50 second-level computer is temporarily stored into a reg- 
ister means 19 witiiin the memory 16 and tiien read out 
from the register means 19 upon request from the host 
computer of any one of tiie pachinko houses. If tiie 
receiver means 17 of tiie second-level computer 2A 

55 receives a request for issuance of authentication data 
for 1,000 1,000-YEN-worth prepaid cards, 100 5.000- 
YEN-worth prepaid cards and 20 10,000-YEN-worth 
prepaid cards, then the computer 2A reads out the 
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authentication data X1a. X2a and X3a from the register 
nneans 19 and imparts thereto unique additional 
authentication data A1 - A1000. B1 • B100 and CI - 
C20, respectively, that are based on elapsed time 
measurements sequentially output by the unique time 
generating device 2A6 of the computer 2A. In this way. 
unique authentication data correspomiing to the respec- 
tive nun^ers of the 1 .GOO-YEN, 5,0D0-YEN and 10,000- 
YEN prepaid cards are created on the basis of elapsed 
time measurements sequentially output by tiie unk^ue 
time generating device 2A6; that is. the authentication 
data of the 1 .000-YEN prepaid cards will be X1a-f A1 to 
Xia+AIOOO. the authentication data of the 5.000-YEN 
prepaid cards will be X2a+B1 to X2a+B100. and the 
authentication data of the 10.000-YEN prepaid cards 
will be X3a+C1 to X3a+C20. The thus-created authenti- 
cation data are tiien transmitted from the transmitter 
means 18 of the second-level computer 2A to the host 
computer 3A of the pachinko house A. At the same 
time, the computer 2A of card distributor A erases the 
identification, actually issued to the pachinko house's 
host computer (e.g., host computer 3A), from among 
the issuance-authorizing identifications con-esponding 
to tiie authentication data X1a. X2a and X3a. Once the 
identification authorizing issuance of a prepaid card 
(issuance-autiiorizing identification) has run out as a 
result of the erasure, new original authentication data 
are supplied by the master computer 1 . 
[0023] In each of the pachinko hoises (the following 
desaiption will be made primarily about the pachinko 
house A), the receiver means of tiie host computer 3A 
receives the authentication data (e.g., XI a-KA1 , X2a+B1 
and X3a+Cl) transmitted by tiie card distributor A. The 
host computer of each of tiie pachinko houses is con- 
structed in a similar manner to the second-level compu- 
ter of Rg. 8 and imparts, to the received authentication 
data (e.g.. Xia+Al. X2a+B1 and X3a+Cl). identifica- 
tion based on elapsed time measurements sequentially 
indicated by the unique time generating device 3A6 of 
tiie host computer. Further, in each of tiie vending 
machines 5 capable of dispensing 1, 000-YEN, 5,000- 
YEN and 10.000-YEN prepaid cards to customers, the 
unique time generating device (e.g.. 5A1-6) provided in 
its computer imparts additional identification data based 
on elapsed time measurements sequentially indicated 
thereby Thus, the vending machine 5 in pachinko 
house A can sell, to customers, prepaid magnetic cards 
20 which have stored thereon unique authentication 
data p(1a+A1+3A**"+5A****) as a result of sequential 
impartment of various unique data based on the respec- 
tive elapsed time measurements indicated by the 
unique time generating devices at various hierarchical 
levels, as shown in Fig. 10. 

[0024] The ultimate unique authentication data thus 
recorded on each of the prepaid cards 20 
(X1a+A1+3A**"+5 A*"*) is transmitted from the low- 
est-level computer of the vending machine 5 to the 
receiver means of the host computer 3A of the pachinko 



house A. which in turn identifies, from tiie recorded ulti- 
mate unique authentication data, an up-to-date record 
or history of prepaid card issuance by the vending 
machine 5 and transmits the ultimate unique authenti- 

5 cation data to ttie receiver means 1 7 of the secorKl-level 
computer 2A of card distributor A shown in Rg. 8. The 
second-level conputer 2A of card distrttxitor A receives, 
by means of its receiver means 17, the ultirtiate unique 
authentication data tiansmitted from all the associated 

10 pachinko houses and stores them into the register 
means 19 thereof, via which the computer 2A transmits 
the ultimate authentication data to the receiver means 
14 of the highest-level main computer 1 . Then, ttie mas- 
ter computer 1 receives the ultimate unique authentica- 

15 tion data transmitted from the computers 2A to 2n of the 
individual card distributor companies and stores them in 
the register means 21 within the memory 8. 
[0025] Note that each of tiie master computer 1 and 
subsewient computers 2A and 3A of card distributor A 

20 and pachinko house stores tiie received ultimate unique 
autiientication data after collating it witii the conespond- 
ing autiientication data (issuance-authorizing identifica- 
tion) previously sent to the subservient computers. Also, 
tiie master computer 1 has prestored therein various 

25 attributes of tiie unique time generating devices pro- 
vided tiierein and in all the subservient computers as 
shown in Rg. 5, so tiiat the master computer 1 rejects 
tiie registration, in its register means, of any ultimate 
unique authentication data containing an attribute that 

30 does not agree with tiie prestored attributes. 

[0026] In tiie above-mentioned manner, each of tiie 
prepaid cards 20 sold by vending machine 1 of pachinko 
house A can be used as a common card universally 
usable in ail the pachinko houses under the control of 

35 card disti-ibutor company A or of the master computer 1 ; 
for example, tiie issued prepaid card 20 can be used for 
"pachinko game machine 4" in pachinko house A. 
[0027] The pachinko game machine of each of 
pachinko houses A to n ((the following description will 

40 be made primarily about pachinko game machine 4) 
includes a card reader/writer 22 contained in or con- 
nected to the lowest-level computer of pachinko game 
machine 4 as shown in Rg. 11. Reading means 23 of 
tiie computer in Fig. 11 reads tiie ultimate unique 

45 autiientication data recorded on tiie prepaid card 22 
tiiat is inserted in the card reader/writer 2. The ultimate 
unique authentication data (X1a+A1-»-3A****+5A****) 
read out from tiie prepaid card 22 by tiie reading means 
23 is transmitted from tiie transmitter means 24 of the 

so computer to tiie host computer 3A of pachinko house A. 
The ultimate unique auth&itication data received by the 
receiver means of the host computer 3A is then for- 
warded, through tiie receiver means 1 7 of the computer 
2 A of card distributor A, to the receiver means 14 of the 

55 master computer 1 for necessary collation. The compu- 
ter 2A of card distributor A or tiie master computer 1 
includes a collator means 26 or 27 as shown in Rg. 6 or 
8. which determines whether the ultimate unique 
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authentication data (X1a+A1+3A""+5A* received 
by the receiver means 14 or 17 has been duly regis- 
tered in the up-to-date record or history of issuance in 
the regist^ means 1 9 or 21 . When, for example, the col- 
lator means 27 in the computer 2A of card dtstrit>utor A 
determines that the unique authentication data received 
from the sut^s^ent computer (host computer 3A of 
pachinko house A) does not match the data stored in 
the register means 19. the unique authentication data is 
transmitted from the transmitter means 18 of the com- 
puter 2A to the receiver means 14 of the master conrpu- 
ter 1. where the data is collated by the collator means 
26. Thus, as long as the collator means 26 or 27 of the 
master computer 1 or the computer 2A of card distribu- 
tor A determines that the unique authentication data 
(X1a+A1+3A****+5A*"*) received from the subservient 
computer (host computer 3A of pachinko house A) 
matches the data stored in the register means 19 or 21 . 
the means 26 or 27 passes the determination or colla- 
tion result through the host computer 3A. to the conrpu- 
ter of the pachinko game machine. Finally, the collation 
result is received by the receiver means 25 shown in 
Rg. 11. The collation result, of the inserted prepaid 
card, by the collator means 26 or 27 thus received by 
the receiver means 25 is visually shewn on a display 28 
of pachinko game machine 4 shewn in Fig. 11. If. for 
example, the prepaid card 20 inserted in the card 
readerAAn^iter 22 is collated with the registered data and 
determined, by the collator means 26 or 27 of the 
higher-level computer, as being a genuine or authentic 
card rightly issued by any one of the computers under 
the control of the master computer 1. an authorizing 
means 29 accepts the prepaid card 20 as authentic and 
displays various information, such as the type, issue 
date and remaining units, of the card (see Rg. 11) on 
the display that is typically in the form of an LCD (LiqukJ 
Crystal Display) or CFIT (Cathode Ray Tube). If, on the 
other hand, the prepaid card 20 inserted in the card 
reader/writer 22 is collated with the registered data, 
determined, by the collator means 26 or 27 of the 
higher-level conputer. as not matching the data stored 
in the register means 19 or 21 and such a collation 
result is received by the receiver means 25. a rejecting 
means 30 determines the inserted prepaid card 20 as 
not being an authentic card rightiy issued by any one of 
the computers under the control of the master computer 
1 and displays a rejection message TTiis card is unusa- 
ble." on a display 28A in the form of an LCD or CRT; in 
this case, the rejecting means 30 also instructs the card 
reader/writer 22 to reject the card as false. 
[0028] The prepaid card 20 determined as authentic 
or acceptat}le by the authorizing means 29 can be used 
in pachinko game machine 4 by the holder or user of tiie 
card. Specifically, if the user, holding a 1 .000-YEN pre* 
paid card 20. selectively depresses one of a plurality of 
buttons on pachinko game nmchine 4 to purchase 
pachinko balls for 500 YEN (50 units) while referring to 
the Information of the card 20 shown on the display 28. 



the selected purchase information is transnoitted from 
the pachinko game machine's computer, through the 
host computer 3A of pachinko house A and computer 
2A of card distributor A, to tiie master computer 1 in 
5 association with tiie ultimate unique authentication data 
stored on tiie card 20. 

[00291 In the master conputer 1 having received ttie 
selected purchase information, a renewal means 31 first 
confirms that the unk^ue autiientication data 

10 (X1a+A1+3A" "+5A"**) received in association witii 
tiie selected purchase information matches the data 
previously stored in the register 21 and then creates 
identification (ID) to autiiorize tiie selected purchase As 
shown in Rg. 12. the purchase-authorizing ID is ere- 

15 ated. as autiientication-data-updating data Via. on tiie 
basis of an elapsed time measurement Y1 indicated by 
tiie unique time generating device 6 provided in the 
master computer 1. and the thus-created authentica- 
tion-data-updating data Y1 a is then transmitted from the 

20 receiver means 13 to the second-level computer 2A 
along with the unique authentication data 
(X1a+A1+3A"**45A****). 

[0030] Similariy, in the second-level computer 2A of 
card distributor A, a renewal means 32 first confirms 

25 that the unique authentication data matches the data 
stored in the register 19 and then creates identification 
data to autiiorize the selected purchase. As shown in 
Fig. 12, tiie purchase-autiiorizing ID is created, as 
authentication-data-updating data PI a, on the basis of 

30 an lapsed time measurement PI indicated by the 
unique time generating device 2A6 provided in tiie com- 
puter 2A, and the thus-created authentication-data- 
updating data PI a is tfien transmitted from ttie receiver 
means 18 to the host corrputer 3 A subservient to the 

35 computer 2A along with the authentication data Yla 
aeated by tiie master computer 1 . 
[0031] In the host computer 3A as well, furttier 
authentication-data-updating data Ql a is created on the 
basis of a current elapsed time measurement Q incfi- 

40 cated by the unique time generating device 3A6 arxJ 
added to tiie received data (Yla+PI). and ttie added 
result is transmitted to tiie pachinko game machine 4. 
Finally, in the pachinko game machine 4, further 
authentication-data-updating data Ria is aeated on tiie 

45 basis of a current elapsed time measurement R1 indi- 
cated by the unique time generating device 4A1 -6 pro- 
vided in its computer and added witti the data Yla, Pla 
and Qia to provide ultimate autiientication-data-updat- 
ing data (Yla+Pla+Qla+RIa). as shown in Fig. 12. 

50 [0032] In the computer of the pachinko game machine 
4. a renewal means 33 updates ttie last-stored unique 
authentication data p(1a+A1+3A****+5A"**) on ttie 
prepaid card 20. on the basis of the updating data 
(Y1a+P1a+Qla+R1a); tiie updating may be done by 

55 erasing the last unique authentication data or adding 
ttiereto ttie updating data. What is essential here is ttiat 
the last-stored unique auttientication data should be 
altered on the ba^s of the updating data 
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(Y1a+P1a+Qla+R1a). The alteration of the unique 
authentication data is effected via the card readerAflmter 
22. and thus the prepaid card 22 is discharged from the 
reader/ivriter 22 with its unique authentication data 
altered on the tresis of the updating data corresponding 
to the selected purchase of pac^^nko balls for 500 YEN 
(50 units). 

[0033] The altered data (updated unique authentica- 
tion data) is transmitted to the higher-order conrputers. 
one after another, in the hierarchical network structure. 
Thus, in the computer 2A of card distributor A. the 
renewal means 32 replaces the last unique authentica- 
tion data, registered in the register means 19, with the 
updated unique authentication data. Then, in the master 
computer 1 as well, the renewal means 31 replaces the 
last unique authentication data, registered in the regis- 
ter means 21. with the updated unique authentication 
data. In this way. the up-to-date record or history of issu- 
ance of the unique authentication data by each of the 
higher-order computers is updated. 
[0034] Next time the prepaid card 20 is used at any 
one of the pachinko game machines under the control 
of the master computer 1. the updated unique authenti- 
cation data is read out from the card 20 and collated 
with the data stored in the registers 19 and 20 of the 
upper-order corrputers to ascertain its acceptability, in a 
similar manner to the above-mentioned. At this time, 
data indicative of the most recent use of the card 20 is 
displayed on the display 28 of the pachinko game 
machine 28. as shown in Fig. 13. 
[0035] As described above, according to the prepaid 
card issuing and authenticating system, each of the 
pachinko houses under the control of the master com- 
puter 1 imparts, to every inserted prepaid card 20, addi- 
tional authentication data that is based on respective 
elapsed time measurements indicated by the individual 
unique time generating devices, so that various data 
relating to the issuance arxj use of the card can be 
recorded on the card substantially in a time-series fash- 
ion. Therefore, every issued prepaid card will have an 
utterly unique identification and its recorded data will be 
updated upon insertion into the readerMriter 22. Thus, 
in a situation where 1,000 or 10,000 false prepaid cards 
are fabricated which have same data as recorded on a 
fairiy issued authentic card and when someone actually 
inserts one of the cards into a pachinko game machine, 
the recorded data on the inserted card is updated in the 
above-described manner, so that all of the other cards 
than the initially inserted one will be autorr^tically 
rejected as unusable or unacceptable (the original 
authentic card will also be rendered unusable). With 
such an arrangement unfair alteration or tampering or 
forgery of prepaid cards will end in meaningless effort 
and thus a thorough self-defense (i.e.. safeguard 
against unfair transfer of the cards to other persons and 
theft of the cards) is achieved by the present invention. 
[0036] Whereas the authentication-data-updating 
data are passed downward to the fourth-level computer 



in the above-described best nrrade as shown in Fig. 12, 
such updating data may be passed from the fourth-level 
computer upward to the higher-order computers so that 
same authentication-data-updating data is ultimately 

5 shared between the master computer 1 and the fourth- 
level conputer and a prepaid card is issued with the 
updated unique authentication data. Further, whereas 
the at>ove-described best mode is arranged such that 
the data to rewrite data to be recorded on a prepakj card 

70 20 is transmitted to the higher-order computers after the 
necessary collation is performed on the card 20 
inserted in the card reader/writer 22 and then the card 

20 is judged to be a fairly issued card, it is preferable 
that such information exchanges be conducted collec- 
ts tively at one time. 

[0037] Moreover, whereas in ttie above-described 
best mode the unique time generating device is pro- 
vided in each of the computers of the card distributors, 
pachinko houses and vending machines and pachinko 

20 game machines of tiie pachinko houses, all of these 
computers need not necessarily contain such a unique 
time generating device. Namely, in one alternative, the 
subservient computers under the control of the master 
computer 1 may impart, to authentication data based on 

25 an elapsed time measurement and received from the 
master computer 1 , respective unique additional data 
(differing among the computers) so that unique authen- 
tication data aeated by combining these unique data is 
recorded on a prepaid card 20 to be newly issued or 

30 Updated (as recited in claims 2 and 8 appended hereto). 
In this case, it is preferable that the master conputer 1 
at the highest level in the hierarchical structure shoukl 
prestore the respective unique additional data of the 
individual subservient corrputers so as to be able to 

35 ascertain via which of the channels has been issued the 
unique authentication data ultimately recorded on the 
card 20 and registered or updated in the register means 

21 (as recited in claim 8 appended hereto). 

[0038] Furthernx)re. tiie subservient computers under 

40 tiie control of the master conputer 1 have t)een 
described above as providing tiie unique time generat- 
ing devices that indicate different elapsed time meas- 
urements at every given time point. Each of these 
unique time generating devices may be implemented by 

45 a software program installed in tiie corresponding com- 
puter, or may be provided on an IC chip built in the com- 
puter, or may be a disaete driver or generator external 
to tiie conputer. Furttier. ttie unique time generating 
device may be provided in each of the subservient com- 

50 puters under the control of the master conputer 1 with 
the master computer 1 or owner of tiie conputer 1 oper- 
ating as an initial or original card supplier (as recited in 
appended claims 6 and 7). Namely, if tiie initial card 
supplier is arranged to prestore contents of data to be 

55 generated by the individual unique time generating 
devices which include their respective elapsed time 
measurements as well as their respective attributes rel- 
ative to tiie master computer 1 , it is possible to ascertain 
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via which procedure has been issued the unique 
authentication data uftimatety recorded on the card 20 
and registered or updated in the register means 21 (as 
recited in appended claim 8). In addition, the computer 
of each of the card disbixitors may be set to operate as 
a secondary supplier which supplies the lower-order 
computers with unique time measurements received 
from the master conputer 1 . 
[0039] In the above-described best mode, each of the 
vending machines 5 and pachinko game machines 4 
has a computer or unique time generating device. Alter- 
natively, witiiout employing such a system, the host 
computer of each of the pachinko houses may be set to 
operate as a lowest-lev^ computer which collectively 
controls the individual vending machines 5 and 
pachinko game machines 4. In this case, ttie host conrv 
puter creates and update the unique authentication data 
and then records tiie authentication data on a prepaid 
card ttiat is issued by the vending n^chine 5 and used 
in ttie pachinko game machine 4. 
[0040] The highest-level computer in the hierarchical 
structure has been described above as the "master 
computer" 1 controlling a pluralrty of other computers. In 
this sense, any one of the conrputers of the card ctistrit>- 
utors and host computers of the pachinko houses may 
be set to function as the master computer 
[0041] Furttiermore. the best mode has been 
described above in relation to prepaid cards for use in 
pachinko game machines, the present invention may be 
applied to other prepaid card instruments, such as 
those for railroads, ships, airplanes, telephones, 
amusement parks (as recited in appended claim 9). In 
this case, the system according to the akxTve-described 
best mode may be provided in the host computers of the 
card distributors or in the computers of the vending 
machines or in computers of automatic ticket checkers, 
telephones or various equipment installed in the amuse- 
ment parks (as recited in appended claims 38 and 39). 
[0042] As obvious from the foregoing description, tiie 
present invention achieves the superior benefit that it 
can effectively avoid damages which would be caused 
by any person stealing or tampering authentication data 
recorded on recording media. 

Examples of Practical Applications: 

(Example 1) 

[0043] Now. the present invention will be desaibed in 
relation to a case where it is used for mutual authentica- 
tion between conrtputers on a hierarchical communica- 
tion network. Fig. 14 is a diagram illustrating a 
hierarchical network of computers installed wctiiin a 
company. In this example, a host or master computer 41 
of ttie company does not Itself contain a unique time 
generating device; instead, such a unique time generat- 
ing device is provided in each of tiie lower-level comput- 
ers subservient to the master computer 41 (as recited in 



appended daims 4. 5. 6 and 7). Directiy connected to 
ttie master computer 41 are the computers 42. 43 and 
44 of a sales department, accojnting department and 
administiBtion department Further, the computers 45, 

5 46. 47 and 48 of individual sales sections are connected 
to the sales departmenfs computer 42, ttie computers 
49 and 50 of indivkJual accounting sections to the 
accounting departmenfs computer 43. and the comput- 
ers 51 and 52 of individual adrrtinistration sections to the 

10 administration departmenfs computer 44. The comput- 
ers subservient to or under tiie control of ttie master 
computer 41 are interconnected via ttie network for 
intercomnrwnication. Each of ttie conrputers other ttian 
ttie master computer 41 is provided witti a unique time 

15 generating 6eAoe 42A - 52A. As in ttie above-described 
best mode, all of these unique time generating devices 
42A to 52A are set to measure unique or different 
elapsed times at every given time point. Memory 54 of 
ttie master conputer 41 includes a data memory 55 in 

20 which are prestored various data on the unique time 
generating desnces 42A to 52A provided in ttie individual 
lower-level conputers under the contiot of the master 
computer 41. The master conputer 41 also includes a 
CPU 56, a renewal means 57. a collator means 58. a 

25 ti'ansmitter means 59 and a receiver means 60. The 
memory 54 of the master computer 41 further includes 
a register means 61. 

[0044] Each of the lower-level or subservient comput- 
ers 42 to 53 includes a CPU 61 . a renewal means 62, a 

30 tiansmitter means 63, a receiver means 64, a reading 
means 65, an authorizing means 66 and a rejecting 
means 67, as shown in Fig. 16. 
[0045] For example, when the computer 45 of ttie first 
sales section desires to access the computer 50 of the 

35 second accounting section to request supply of some 
accounting-related information, the CPU 61 of the com- 
puter 45 creates unique authentication data TKA, pecu- 
liar to tiie computer 45, based on an elapsed time 
measurement TK indicated by the unique time generat- 

40 ing device 45A and transmits the thus-created unique 
authentication data to the higher-level sales depart- 
menfs computer 42 via ttie transmitter means 63 (see 
Fig. 16). In turn, the sales departmenfs conputer 42 
fooA^ards the unique authentication data to the receiver 

45 means 42 of the master conputer 41 . Thus, in the mas- 
ter conputer 41 , the collator means 58 connected to ttie 
CPU 56 collates the unique autiientication data TKA. 
received by the master conputer 41 . with the informa- 
tion on ttie individual unique time generating devices 

50 prestored in the data memory 55, to find which of ttie 
subservient computers has aeated and issued ttie 
authentication data TKA. Once the unique authentica- 
tion data TKA is determined as having been fairly cre- 
ated and issued by any one of ttie subservient 

55 computers as a result of the collation, the master com- 
puter 41 registers the authentication data TKA in the 
register means 61 as part of an up-to-date record or his- 
tory d unique autiientication data issuance by the sub- 
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servient computer (see Rg. 15). Once the unique 
authentication data TKA is duty registered in the register 
means 61 , the transmitter means 59 of the master com- 
puter 41 transmits information, authorizing the desired 
access, to the receiver means 64 of the con^uter 45 of 
the first sales section by way of the sales department's 
corrputer 42. 

[0046] Thus, in response to the acceptance or author* 
ization of the desired access, the computer 45 of the 
first sales section sends, via the transmitter means 63. 
data to initiate tfie access to the computer 50 of the sec- 
ond accounting section. At that time, the unique authen- 
tication data TKA is sent as a unique identification of 
the computer 45. to the receiver means 64 of the com- 
puter 50 of the second accounting section along with a 
request for the accounting-related information. 
[0047] Then, in the computer 50 of the second 
accounting section, the reading section 65 reads the 
unique authentication data TKA from among the 
received infonnation. snd the thus-read authentication 
data TKA is transmitted from the transmitter means 63, 
via the accounting department's computer 43, to the 
receiver means 60 of the master computer 41. where 
the data TKA is sul3jected to the collation (see Rg. 16). 
[0048] In the master computer 41 , the collator means 
58 collates tiie received authentication data TKA to 
determine whether the received data duly matches the 
data registered in tiie register means 61 . If the authenti- 
cation data TKA matches the data registered as an up- 
to<late record or history of issuance of unique authenti- 
cation data by the subservient computer, the master 
computer 41 transmits the collated result from its trans- 
mitter means 59 to the computer 50 of the second 
accounting section by way of tiie accounting depart- 
ment's computer 43. 

[0049] In this way. the receiver section 64 in the com- 
puter 50 of ttie second accounting section receives the 
collated unique autiientication data TKA. If the collated 
unique authentication data TKA is judged to be proper 
data (that has been fairly created and issued by any one 
of the subservient computers), then the authorizing 
means 66 in tiie computer 50 permits further communi- 
cation with the computer 45 of the first sales section, in 
response to which the requested accounting-related 
information is supplied to the computer 45. 
[0050] If. on tiie otiier hand, tiie collated unique 
autiientication data TKA is judged to be improper data 
(that has not been fairly created and issued by any one 
of the subservient computers), then tiie rejecting means 
67 in the computer 50 inhibits furtiier communication 
witii the computer 45 of the first sales section because 
there is a great likelihood that an unauthorized outsider* 
computer is pretending to be tiie computer 45. 
[0051] Witii tiie authentication-data issuing and verify- 
ing system in accordance witii Exanple 1 above, each 
of tiie computers on the hierarchical network can be 
autiienticated reliably in accordance with data aeated 
and issued on tiie basis of an elapsed time measure- 



ment indicated by the unique time generating device 
provided therein. Thus, it is possible to effectively pre- 
vent any third person's computer from unfairly conduct- 
ing data exchange by pretending to be one of tiie 
5 subservient conrputers or intruding into the hierarchical 
network. 

[0052] Whereas in Example 1 unique authentication 
data TKA issued by Uie conputer 45 of tiie first sales 
section has been descrit>ed as being transmitted to the 

10 master computer 41 by way of tiie sales departments 
computer 42. such data may be transferred directiy to 
the master computer 41. Similarly, data to be collated 
and resultant collated data nr^y be communicated 
between the master computer 41 and the conrputer 50 

75 of the second accounting section directiy. rather than by 
way of the accounting department's computer 43. 
[0053] Furtiier. when the computer 45 of tiie first sales 
section desires further access to tiie conputer 50 of the 
second accounting section in Example 1. the unique 

20 authentication data TKA created and issued earlier may 
be altered by tiie renewal section 62 on tiie basis of an 
elapsed time measurement indicated t>y the unique time 
generating device 45A so that furtiier communication is 
safely made between the two computers 45 and 50 on 

25 tiie basis of tiie tiius-altered unique autiientication data 
in a similar manner to the above-described best mode. 
In this case, the renewal means 57 in the master com- 
puter 41 may update tiie unique authentication data 
registered in the register means 61 (as recited in 

30 appended claims 31 and 32). Also, in such a case, the 
subservient computers may include a memory means 
(not shown) for storing the unique authentication data 
(including the altered unique authentication data) for 
use in next access. Rather tiian providing such a mem- 

35 ory means in the subservient computers, an alternative 
anangement may be made such that the last-issued 
unique autiientication data TKA is read out from register 
means 61 in the master computer 41 as the computer 
45 of tiie first sales section requests access to tfie com- 

40 puter 50 of the second accounting section and addi- 
tional data based on a new elapsed time measurement 
received from the computer 45 is imparted to the 
authentication data TKA to thereby create and issue 
unique authentication data that is updated in both tiie 

45 master and sut>servient computers. 

[0054] Moreover, whereas Example 1 has been 
described as carrying out the further access between 
the subservient computers on the basis of such tfxjated 
unique authentication data, unique autiientication data 

50 may be created and issued, as a so-called one-time 
password, for each access on the basis of an elapsed 
time measurement indicated by tiie unique time gener- 
ating device provided in tiie computer requesting the 
access (as recited in appended claim 9). 

55 [0055] Furthermore, in addition to the arrangement of 
Example 1, tiie accessed subservient computer may 
also create and issue unique autiientication data via its 
unique time generating device and transmit tiie unique 
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authentication data to the accessing conputer by way of 
same procedure as taken for the unique authentication 
data of the latter conputer. so as to pemrut mutual 
authentication between the two computers. Moreover, 
whereas Exanrple 1 has been descrS}ed in relation to 
the case where the computers of the individual sections 
are the lowest*leveI computers in the conpany, still- 
lower-level conputers may be connected to the sec- 
tions' computers for use at various stations or by individ- 
ual constituent menders belonging to the sections and 
departments (as recited in appended daim 16). 

(Example 2) 

[0056] Next the authentication-data issuing and veri- 
fying system of the present invention will be described 
in relation to a case where it is applied to mutual authen- 
tication among computers of various banking agencies 
(as recited in appended claims 10 to 15. 20. 22. 38, 39. 
etc.) This example assumes that account transfers, set- 
tlements of account, etc. between the banking agencies 
are conducted via the respective computers. Further, in 
each of the banking agencies, various services to indi- 
vidual customers, such as money changing, loaning, 
payment into accounts and money withdrawal, are 
recorded in the computer in association with their 
account numbers and the like. In Example 2. such vari- 
ous operations between the banking agendes and 
between the banking agencies and their customers are 
all executed on the basis of unique authentication data. 
[0057] Rg. 17 is a diagram illustrating a hierarchical 
network of the computers in Example 2. where refer- 
ence numeral 70 represents a host computer of the cen- 
tral bank (e.g.. tiie Bank of Japan) that functions as a 
master computer exercising general control of the other 
corrputers in the hierarchical network. To the master 
computer 70 are connected computers of various lower- 
level or subservient t}anking agencies, such as host 
computers 71 of city banks, host computers 72 of local 
banks, host computers 73 of credit banks and host com- 
puters 74 of aedit unions for simplicity, only one host 
computer is shown and will be desaibed for each of the 
subservient banking agencies. Further, to the computer 
of each of the banking agencies are connected host 
computers of main and local offices and branches, actu- 
ally performing banking operations, of the associated 
banking agencies. Furthennore. to the host computer of 
each of the main and local offk:es and branches are 
connected computers of on-line terminals (including 
cash dispensers). In the computers of the central t>ank 
down to the on-line terminals, there are provided unique 
time generating devices, one for each computer, which 
count time within different time-measuring periocte to 
indicate different elapsed time measurements at every 
given time point, as described eariier in relation to tfie 
above-described best mode. Data relating to tiie individ- 
ual unique time generating devices are stored together 
in a data memory of the host computer 70 of the central 



bank for general management by the host computer 70. 
similariy to the arrangement of Fig. 15. 
[0058] Each of the conputers on tfie hierarchical net- 
work is arranged to create and issue unique authentica- 

5 tion data in a similar nranner to the best mode or 
Example 1. when corducting. via a given terminal com- 
puter, a transaction (such as settiement of a draft or 
check or remittance) with the computer of another bank- 
ing agency or another office of the same banking 

10 agency. For example, when settiement of a check 
issued by one of the branches of the local bank 72 is 
requested thereto via the on-line terminal of one of the 
branches of the city bank 71 . a request for access to the 
branch of the local bank 72 is sequentially made from 

)5 tiie on-line terminal, through ttie city banks host compu- 
ter 71, to ttie cent-al banks host computer 70. In 
response to such a request, the central bank's host 
computer 70 creates and issues authentication data 
TL1. representative of authorization of the requested 

20 access, on the basis of an elapsed time measurement 
indicated by the unique time generating device provided 
in that host computer. Then, the local banks host com- 
puter 71 creates and issues autiientication data T12 on 
tiie basis of an elapsed time measurement indicated by 

25 its unique time generating device and adds the authen- 
tication data TL2 to the authentication data TL1 
received from the centi'al banks host computer 70. 
Thereafter, ttie branch's computer creates and issues 
authentication data TL3 on ttie basis of an elapsed time 

30 measurement indicated by its unique time generating 
device and adds tiie autiientication data TL3 to ttie 
authentication data TL2, and the terminal's computer 
aeates and issues authentication data TL4 on the basis 
of an elapsed time measurement indicated by its unique 

35 time generating device and adds tiie auth^cation 
data TL4 to ttie autiientication data TL^ so as to provide 
unique authentication data TL1+T1^+TL3+TL4. Thus, 
ttie terminal's computer transmits the unique autiienti- 
cation data TL1+TL2+TL3+TL4 to ttie computer of ttie 

40 local banKs branch as check-settling identification ID 
along with check settlement information. Prior to the 
ti'ansmission. the issued unique authentication data is 
sequentially sent to the higher-order computers so that 
it is registered in register means (not shown) of the 

45 branch's and local banks host computers and ultimately 
in register means (not shown) of ttie central bank's host 
computer 70. The computer of ttie local bank's branch, 
having received ttie check settlement request reads ttie 
unique authentication data TL1+TL2+TL3+TL4 from 

50 among the received information and transmits the thus- 
read data to tiie higher-order computers so that the data 
is ultimately collated in the centi'al bank's host computer 
70. Specifically, in the central banks host computer 70, 
a collator means (not shown) collates the ttie unique 

55 authentication data received from ttie computer of ttie 
local bank's branch in order to ascertain whether the 
data matohes the authentic data registered in the regis- 
ter means. The collated result is transmitted to the 
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lower-order computers so that rt is ultimately received 
by the branc^*s cooputer. If the received data is authen- 
tic data, the branch's computer initiates procedures 
necessary for the check settlement on the basis of per- 
mission from the authorizing means; othenwise, it 5 
refuses to execute the check settlement procedures. 
[0059] Details of the imlivkiual conponents in the 
authentication-data issuing and verifying system are 
similar to those described earlier in relation to Exanple 
1 and will not be desaa)ed here to avokJ unnecessary 10 
duplication. 

[0060] In the case of a relatively continual transaction, 
such as an account transfer, remittance or debiting, 
occurring nK)nthty between the banking agencies 
(including transactions between the branches and is 
between t)randies and main office of a same banking 
agency), unique authentication data used in the last 
transaction may be updated, as in Example 1. for used 
in a next transaction. To this end. it is only necessary 
that autiientication data be transmitted from tiie master 20 
computer to the lower-order computers while being 
imparted unique additional data in each of the lower- 
order computers so that the lowest-level (terminal) com- 
puter creates and issues updated unique authentication 
data on the basis of the received authentication data. 25 
similariy to the unique authentication data aeating pro- 
cedures of Rg. 17. Registration and verification of such 
updated unique authentication data are performed in a 
similar manner to the above-described best nxxJe. 
Example 1 or modifications (as recited in appended 30 
claims 27 to 31) and will not be desaibed here to avoid 
unnecessary duplication. 

[0061] Although tiie updated unique authentication 
data can be generated by updating tiie last unique 
authentication data registered in a renewal means (not 35 
shown) of the master computer (host computer 70 of the 
central bank), a similar renewal means may also be pro- 
vided in each of the lower-order conputers to update 
the content of tiie unique authentication data stored in 
tiie register means of the lower-order computer (as 40 
recited in appended claims 32 and 34). In such a case, 
tiie renewal means of each of the lower-order comput- 
ers may retrieve the updated auttientication data regis- 
tered in the highest-level computer of the central bank to 
thereby update the last unique authentication data 45 
stored in the register means of the lower-order compu- 
ter (as recited in appended daim 33). 
[0062] Furtiier, in tiie example of Fig. 17. each of the 
banking agencies uses unique authentication data not 
only in transactions with other banking agencies but so 
also in direct transactions with their customers. Each of 
the customers normally holds one or wore cards 75 
(such as a cash card and aedit card) associated with 
his or her account opened at the banking agency, and it 
is expected tiiat in tiie near future the customers will ss 
also hold electi'onic money carcte (so-called "electronic 
money") issued by their banking agencies. Normally, 
magnetic or IC cards used as such money-equivalent 



cards are issued via the terminal computers as shown in 
Fig. 1 7. at which time unique autiientication data s cre- 
ated, for each of the cards, in accordance with elapsed 
time measurements incOcated by the indrvklual unique 
time generating devices on the basis of original authen- 
tication data ttiat is passed from ttie central bank's com- 
puter 70 to the lower-order corrputers wNle being 
imparted additional data in each of tiie lower^der com- 
puters and the thus-created time unk)ue authentication 
data is recorded onto tiie card along with other informa- 
tion such as account information (inducfing information 
on the current balance) and credit information (induding 
information on the maximum limit of loan). Each time 
tiie this-issued card 75 is used in the terminal computer 
of a selected banking agency to execute any one of var- 
ious transactions, such as payment into account, money 
changing, money withdrawal from deposits and savings, 
deposit of money and inquiry of the current remaining 
balance, the unique authentication data is collated and 
updated in tiie master computer 70 (or in any of the 
lower-order computers). Further, for the ^ectronic 
money cards which are expected to be widely used in 
tiie near future, terminal machine (terminal computers) 
will t>e installed in shops, department stores, etc. and 
connected to the network as shown in Fig. 17. and ttie 
unique auttientication data on the card 75 will be col- 
lated and renewed each time it is put to actual use. As a 
consequence, the money anx)unt in the account corre- 
sponding to the card 75 is updated, i.e., increased or 
decreased, so tiiat various data are created induding 
tiie up-to-date record of use of the card 75. 
[0063] Witii such an arrangement, theft of the 
recorded data on the card 75 will end in meaningless 
effort because ttie recorded data are automatically 
altered immediately when the card is put to use. 
[0064] Further, even in a transaction between the cen- 
tral bank and any one of tiie subservient banking agen- 
des (such as supply of money, particularly tiiat of 
electronic money, or inquiry or report between the two), 
reliable autiientication is permitted by creating and issu- 
ing unique autiientication data to carry out necessary 
procedures on tiie tiius-issued data. Especially, this 
arrangement allows the central bank's conputer to 
readily know a total money supply (particulariy. that of 
electronic money), so tiiat tiie monetary policy of the 
central bank can be property managed via its host com- 
puter 70. Otiier an^angements and operation of the 
exanrple are similar to those of the above-described 
best mode, example 1 or modifications arxi will not be 
described here to avoid unnecessary duplication. 

(Exanple 3) 

[0(^5] Rg. 1 8 is a diagram showing a hierarchical net- 
work structure where the authentication-data issuing 
and verifying system is provided in each of a plurality of 
computers owned by a railroad company (as recited in 
appended claims 18. 19. 38, 39. etc.). In ttie illustrated 
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example, reference numeral 80 repr^ents a host com- 
puter of the railroad conpany, to which are connected 
subservient computers of incfividual stations, tourist 
bureaus and convenience stores *-only one station, 
tourist bureau and convenience store are shown and 5 
will be desaibed for simplicity" that control issiance of 
railroad tickets. To each of the subservient computers 
are connected computers contained in or attached to 
ticket vending machines that issue various tickets with 
magnetic data recorded thereon, such as wdinary rail- 10 
road passenger tickets, coupon tickets, commuter 
passes and platform tickets, as well as prepaid (mag- 
netic) cards for utilizing the railroad facilities. Ihe host 
computer 80 of the railroad connpany is also connected 
with computers of automatic ticket checkers 81 that are is 
placed at the ticket gates of the individual railroad sta- 
tions to read Information recorded on the prepaid cards 
and tickets. In this example, a unique time generating 
device is provided in each of the host computer 80 of 
the railroad company, computers of the station, tourist 20 
bureaus and convenience store and computers of the 
lowest-level vending machines and ticket checkers 81 . 
Thus, unique authentication data, created and issued 
by the unique time generating devices on the basis of 
unique elapsed time measurements in a similar manner 2s 
to Example 2 above, will be recorded, along with rail- 
road service information indicative of a travel section, 
type and No. of a reserved seat, term of validity, etc.), 
onto each of the tickets and prepaid cards sold via the 
vending machines. To this end, each of the computers 30 
of the vending machines and ticket checkers 81 is pro- 
vided with a reader/writer which reads and write data on 
the tickets and prepaid cards. 
[0066] The tickets and prepaid cards issued via the 
vending machines can be used to pass through the 3S 
automatic ticket checkers and the prepaid cards can be 
used to purchase tickets from the vending machines, 
during which time the unique authentication data 
recorded on each of these tickets and prepaid cards is 
read via the reader/writer and then transmitted to the 40 
host computer 80 of the railroad conpany for the subse- 
quent collation. Namely, the host conputer 80 collates 
the received unique authentication data with previously 
registered data in the register means and then sends 
the collated result to the ticket ched^r 81 or vending 4S 
machine in which the ticket or prepaid card has been 
inserted. The ticket checker 81 or vending machine, 
having received the collated result, permits the use of 
the ticket or prepaid card if the ticket or prepaid card has 
been determined as authentic, but otherwise it rejects so 
the use of the ticket or prepaid card. Each of the tickets 
and prepaid cards thus accepted is subjected to neces- 
sary rewriting or updating of the recorded railroad serv- 
ice information and the unique authentication data on 
the basis of authentication data and the like inparted by ss 
the higher-order corrputers in a similar manner to the 
above-described best mode and examples. The 
updated data are sent to the host conputer 80 of the 



railroad company to update the previously registered 
unique authentication data in the register means 
thereof. For tickets having a specific term of validity, 
such as commuter passes and platform tickets, the 
recorded data may be automatically erased via the reg- 
ister means upon expiration of the term. 
[0067] Such a system for issuing and authenticating 
tickets and prepaid cards can of course be applied to 
other transportation companies than railroad compa- 
nies, such as airline corrpanies. shipping companies 
arvJ bus conpanies. In every such application, it is only 
necessary that information indicative of the shipping, 
airline or bus services be recorded on the ticket or pre- 
paid card along with the unique authentication data. 
Possible examples of the ticket arxl prepaid card for use 
with the present inventive system include cards and 
tickets for amusement parks, lottery tickets and gift cer- 
tificates issued by department stores, tickets for various 
recreational facilities, and tickets for auton^tic vending 
machines. In every such case, each amount due is sub- 
tracted from the money amount (currerrt balance) 
recorded on the card or ticket and simultaneously the 
unique authentication data is ipdated to thereby pre- 
vent unfair or unauthorized use of the card or ticket 

(Exanple 4) 

[0068] The identification data issuing and verifying 
system in accordance with the present invention is also 
applicable to various other types of transaction card, 
such as cards issued by credit companies, securities 
companies, insurance companies, loan conpanies and 
trust conpanies. For exanple, each card issued by a 
credit conpany, as shown in Rg. 19. on the basis of 
information on the customer's credit standing can be 
used in every member store of the credit conpany, and 
the unique authentication data recorded on the card is 
of course updated each time tiie card is used. Further, 
information on ev^y transaction in the member store is 
sent, along with the unique authentication data, to a 
host conputer 83 of an associated bank as well as a 
host conputer 82 of the aedit company, so that neces- 
sary settlement procedures can be performed between 
the host computers of tiie bank and credit company on 
the t>asis of the unique authentication data. 

(Example 5) 

[0069] The autiientication^lata issuing and verifying 
system In accordance with the present invention is 
applicat)le to conputers used by an administrative 
organ (as recited in appended claim 17) as well as com- 
panies and otiier profit-nr^ng and non-profit-making 
organizations as described earlier in relation to Exam- 
ple 1. Namely, in Exanple 5, a host computer of the 
administrative organ is set to function as a master com- 
puter, and the other computers used at various stations 
and by constituent members of tiie organ are made to 
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function as lower-level comf^ers subservient to the 
master conr^)uter. Access between these computers 
within the administrative organ is earned out on the 
basis of unique authentication data similarty to the best 
mode, exanples and n^ifications as described above. 
[0070] The administrative organ, as shown in Rg. 20, 
supplies residents with ID cards 85 issued via a card 
Issuing machine 84. At that time, the issuing machine 
84 may record unique authentication data created on 
the basts of respective authentication data transmitted 
thereto from the host corrputer 86 and the computer 87 
of a main office 86 and added together one after 
another (as recited in appended claims 11 and 38). 
Increased efficiency of the administrative management 
may be achieved by allowing the residents to get tiieir 
desired service using the thus-issued ID cards 85 on 
terminal machines 90 positioned in the main, branch or 
local office of the administrative organ. In these cases, 
unfair use of the ID cards by unauthorized persons can 
be effectively prevented because the unique authentica- 
tion data recorded on each of the cards is updated 
immediately every time the card is used on the terminal 
machine 90. 

[0071 ] Whereas the best mode, examples and nrKxJif i- 
cations have been described above mainly in relation to 
magnetic-type prepaid cards and cash cards. ID cards, 
etc., the principle of tiie present invention may also be 
applied to various other storage media, such as floppy 
disk and writable CD-ROfy/l. Where the present inven- 
tion is applied to an IC card, it is possible to incorporate 
in the IC card a unique time generating device operating 
on the basis of data received from a higher-level compu- 
ter, because the IC card can itself contain an electric 
cell- Further, by attaching the IC card to a handy-type 
personal computer for connection to communication 
lines, the computer can work as a lowest-level computer 
in the hierarchical network structure. 
[0072] Moreover, whereas the best mode and exam- 
ples have been described above as communicating the 
level-specific authentication data and the ultimate 
unique authentication data with no particular modifica- 
tion made thereto, it is preferable to encrypt these data 
via an encoder device. Particularly, it is desirat)le that 
these data be appropriately protected from being signif- 
icantiy influenced in a direct manner by a lower-level 
computer and that the unique time generating devices 
and their behavior remain invisible. 

IND USTRIAL AP PLICABILITY 

[0073] With the present invention having been 
described so far. authentication of any one of a plurality 
of computers interconnected via communication lines or 
mutual authentication between the computers can be 
performed with greatly inaeased accuracy. It is also 
possit>le to more accurately authenticate a recording 
media storing thereon authentication data issued from 
any of the computers. Further, because the unique 



authentication data is aeated and issued or updated or 
altered every time the recording media having the data 
^ored thereon is put to actual use. the present invention 
can always grantee a secure transaction even when the 

5 unique authentication data is leaked to any third person. 
Thus, the present inv^on win find a variety of applica- 
tions, such as authentication of various money-equiva- 
lent transaction instruments such as prepakJ cards and 
cash cards, authentication of tickets, coupon tickets and 

10 electronic money, authentication of personalized ID 
cards, and computer-based authentication between 
companies, between banking agencies and between 
administrative organs. 

IS Claims 

1. An authentication<Jata issuing system based on 
unique time, said authentication-data issuing sys- 
tem including a plurality of cortputers connected 
20 with each other via communication lines with one of 
said computers set to function as a master compu- 
ter, said master computer comprising: 

a unique time generating device including time 
25 keeping means for sequentially outputting unit 

time values at predetermined intervals over a 
preset time-measuring period tiiat begins at a 
given start point on a selected date and termi- 
nates at a given future end point and accumu- 
30 lating means for sequentially accumulating 

said unit time values output by said time keep- 
ing means so as to constantiy measure a 
changing elapsed time within the time-measur- 
ing period; 

35 transmitter means for, during communication 

between said master computer and another of 
the computers subservient to said master com- 
puter, transmitting, from said master computer 
to the subservient computer, authentication 

40 data based on an elapsed time measurement. 

corresponding to a given time point, indicated 
by said unique time generating device; and 
register means for receiving and registering an 
issuance history of unique authentication data 

45 created and issued by said subsen^ent conrpu- 

ter imparting additional data, unique to said 
subservient computer, to the authentication 
data transmitted by said master computer. 

^ 2. An authentication-data issuing system based on 
unique time, said authentication^ata issuing sys- 
tem including a plurality of computers connected 
with each other via communication lines with one of 
said computers set to function as a master compu- 

55 ter, said master computer including a unique time 
generating device including time keeping means for 
sequentially outputting unit time values at predeter- 
mined intervals over a preset time-measuring 
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period that begins at a given start point on a 
selected date and terminates at a given future end 
point and accumulating means for sequentially 
accumulating said unit time values output by said 
time keeping means so as to constantly measure a 5 
changing elapsed time within the time-measuring 
period, 

each of the conputers subsendent to said 
master conrputer comprising: 

10 

receiver means for. during communication with 
said master computer, receiving authentication 
data based on an elapsed time measurement, 
corresponding to a given time point, indicated 
by said unique time generating device of said is 
master computer; 

issuer means for creating and issuing unique 
authentication data by Impart'ng additional 
data, unique to said subservient computer, to 
the authentication data received via said 20 
receiver means from said master computer; 
and 

transmitter means for transmitting, to said mas- 
ter computer, an issuance history of the unique 
authentication data aeated and issued by said 25 
issuer means. 

3. An authentication-data issuing system as recited in 
claim 2 wherein said issuer means in each of the 
subservient computers includes imparting means 30 
for imparting the additional data, unique to said 
subservient computer, to the received authentica- 
tion data, and said inparting means includes a 
unique time generating device that includes time 
keeping means for sequentially outputting unit time 35 
values at predetermined intervals over a preset 
time-measuring period that begins at a given start 
point on a selected date and terminates at a given 
future end point and accumulating means for 
sequentially accumulating said unit time values out- 40 
put by said time keeping means so as to constantly 
measure a changing elapsed time within the time- 
measuring period, and 

wherein said unique time generating device 
in said imparting means indicates elapsed time 4S 
measurements over the time-measuring period that 
is different from the time-measuring periods of the 
unique time generating devices provided in said 
master computer and other sut>servient computers 
and aeates arxi issues unique authentication data so 
peculiar to said subsennent computer. 

4. An autfientication-data issuing system based on 
unique time, said auttientication-data issuing sys- 
tem including a plurality of computers connected ss 
with each other via communication lines with one of 
said computers set to function as a master compu- 
ter, each of the conputers sut^servient to said mas- 



ter computer conrprisir^: 

a unique time generating device including time 
keying means for sequentially outputting unit 
time values at predetermined intervals over a 
preset time-measuring period unique to said 
computer that begins at a given start point on a 
selected date and terminates at a given future 
end point and accumulating means for sequen- 
tially accumulating said unit time values output 
by said time keeping means so as to constantiy 
measure a changing elapsed time within the 
time-measuring period; 

issuer means for creating and issuing unique 
authentication data, peculiar to said subservi- 
ent conputer, on tiie basis of an elapsed time 
measurement indicated by said unique time 
generating device; arxj 

transmitter means for transmitting, to said mas- 
ter computer, an issuance history of the unique 
authentication data created and issued by said 
issuer means. 

5. An authentication-data issuing system based on 
unique time, said authentication-data issuing sys- 
tem including a plurality of computers connected 
with each other via communication lines with one of 
said corrputers set to function as a master conpu- 
ter. each of the conputers subservient to said mas- 
ter computer comprising a unique time generating 
device including time keeping means for sequen- 
tially outputting unit time values at predetermined 
intervals over a preset time-measuring period 
unique to said computer that begins at a given start 
point on a selected date and terminates at a given 
future end point and accumulating means for 
sequentially accumulating said unit time values out- 
put by said time keeping means so as to constantiy 
measure a changing elapsed time within the time- 
measuring period, 

said master computer, exercising general 
control of the subservient computers, including reg- 
ister means for receiving arxj registering an issu- 
ance history of data created and Issued by each of 
said subservient computers on the basis of an 
elapsed time measurement indicated by said 
unique time generating device of said subservient 
computer. 

6. An authentication-data issuing system as recited in 
daim 3 or 4 wherein said nnaster computer func- 
tions as an original supplier of unique time to said 
subsen^ent computers so that said unk^ue time 
generating devices of said subservient conputers 
are activated to indicate elapsed time measure- 
ments within their respective preset time-measur- 
ing periods different from each other. 
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7. An authentication-data issuing system as recited in 
claim 3 or 4 wherein said master computer func- 
tions as an original stpplier of unique time to said 
SLd>servient computers so that said unique time 
generating devices of said subservient conputers 
are activated to indicate elapsed time measure- 
ments within their respective preset time-measur- 
ing periods different from each other, and eac^ of 
the conrfsuters that are immediately sut>servient to 
said master conputer is a second-level computer 
that functions as a secondary supplier of unique 
time data to third-level computers sut)servient to 
sakl second-level computer so that the unique time 
generating devices of said third-level oonrputers are 
activated to indicate elapsed time measurements 
within their respective preset time-measuring peri- 
ods different from each ottier. 

8. An authentication-data issuing system as recited in 
any one of the preceding claims wherein said m^- 
ter computer includes storage means for storing 
data on said unique time generating device of each 
of tiie sut)sen^ent computers which include data 
indicative of tiie time-measuring period of said 
unique time generating device, or 

data on attributes of said unique time gener- 
ating devices of said master computer and each of 
said subservient computers, or 

unique additional data to be imparted, by 
each of said subservient computers, to the authen- 
tication data received from said master computer. 

9. An authentication-data issuing system as recited In 
any one of claims 1 to 7 wherein the unique authen- 
tication data created and issued by each of said 
subservient computers is transmitted to and used 
by one or wore other subservient computers under 
control of said master computer every time a trans- 
action involving use of the unique autherrtication 
data is performed. 

10. An authentication-data issuing system as recited in 
any one of claims 1 to 7 wherein the unique authen- 
tication data created and issued by each of said 
subservient computers includes various informa- 
tion to be transmitted to one or more other sutjser- 
vient computers under control of said master 
computer, said various information including any of 
information representative of nature of a transac- 
tion, merchandise, setUement of account and credit 
standing. 

11. A recording media having stored thereon unique 
authentication data created by any one of said sut>- 
sen^ent conrputers as recited in any one of claims 
1 to 7, said recording media being issued by said 
subservient computer. 



12. A recording mecOa as redted in claim 11 which 
oonrprises a floppy disk, IC card, magnetic card or 
writable CD-ROM. 

5 13. A recording media as recited in daim 1 1 where the 
unique authentication data staed thereon indudes 
any of monetary information, information on credit 
loan, money information irKjicative of a current bal- 
ance of deposit or saving In a particular account. 

10 and infornrmtion indicative of perrrtission or refusal 
of use of an amusement part, game house, recrea- 
tional facility, a railroad, bus, ship, airplane, tele- 
phone, facsimile, automatic vending machine or the 
like. 

15 

14. An authenticaticn<lata issuing system as recited in 
any one of daims 1 to 7 wherein said mater compu- 
ter is a host computer of a central bank exercising 
general control of banking operations and sakj sut>- 

20 servient computers are conputers of banking 
agendes such as dty. local and credit banks under 
control of the host computer of the central bank, 
and wherein a transaction, such as nrK)ney supply, 
settiement, loaning, money changing or payment 

25 into account, between any one of the banking agen- 
des and a customer is performed on the basis of 
unique authentication data created and issued for 
each transaction. 

30 ia An authentication-data issuing system as recited in 
any one of claims 1 to 7 wherein said master com- 
puter is a host computer of a main office of a bank- 
ing agency exerdsing general control of a plurality 
of branches, local offices and tiie like of the banking 

35 agency and said subservient computers are com- 
puters installed in the main office, branches and 
local off k;es of tiie banking agency, and wherein a 
fansaction, such as money supply, settiement, 
loaning, money changing or payment into account. 

40 between any one of tiie sut>servient computers and 
a customer is performed on the basis of unique 
authentication data created and issued for each 
transaction. 

45 16. An authentication-data issuing system as redted in 
any one of claims 1 to 7 wherein said mater compu- 
ter is a host computer of a main office exercising 
general control of an organization such as a com- 
pany or corporation and sakj subservient comput- 

50 ers are computers for use at various stations or by 
constituent members of the organization, and 
wherein an operation to be effected by each of the 
stations or constituent members is performed on 
the t>asis of unique authentication data created and 

55 issued by the corresponding subservient computer 
for each operation. 

17. An authentication-data issuing system as redted in 
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any one of claims 1 to 7 wherein said mater conpu- 
ter is a host computer of an administrative organ 
exercising general control of administrative affairs 
and said siteervient conrputers are computers for 
use at various stations or by constituent members 
of the administrative organ, arKl wheren an opera- 
tion to be effected by each of the stations or constit- 
uent ment)ers is perfamed on the basis of unique 
authentication data created and issued by the cor- 
responding subservient computer for each opera- 
tion. 

18. A recording media as recited in daim 11 wherein 
said mater computer is a host computer of a trans- 
portation corrpany exercising general control of 
operations for issuing various tickets, such as an 
ordinary passenger ticket, railroad and ship tickets, 
coupon ticket, commuter pass and airiine ticket and 
said subservient computers are computers con- 
tained in vending machines installed in a station, 
airlines, shipping company tourist bureau, conven- 
ience store and the like, said recording media being 
employed as the thicket issued by any one of the 
vending machines and having stored tiiereon 
unique authentication data that is created by said 
subservient computer of the vending machine 
every time tiie ticket is used. 

19. A recording media as recited in daim 11 wherein 
said mater conrputer is a host corrputer exercising 
general control of operations fa issuing various 
prepaid cards for using a railroad, ship, airplane, 
pachinko game machine, telephone, amusement 
park and the like and said subservient computers 
are conputers contained in vending machines for 
issuing the prepaid cards, said recording media 
being enployed as the prepaid card issued by any 
one of the vending machines and having stored 
thereon unique authentication data that is created 
by said subservient conputer of the vending 
machine every time the ticket is used. 

20. A recording media as recited in daim 1 1 wherein 
said mater conputer is a host compute of a central 
bank exerdsing general control of operations for 
issuing electronic nfK>ney and said subservient 
conputers are computers contained in money issu- 
ing machines for issuing electronic nrtoney to users, 
said recording media being employed as the elec- 
tronic nnoney issued by any one of the money issu- 
ing machines and having stored thereon unique 
authentication data that is created by said subservi- 
ent computer of the money issuing machine every 
time the electronic money is used. 

21. A recording media as recited in claim 11 wherein 
said mater computer is a host compute of an 
administrative organ exerdsing general control of 



public services to be provided to individual resi- 
dertts and said sut^servient conputers are comput- 
ers contained in card issuing machines for issuing 
personalized ID cards that are to be used by the 

5 individual residents to get the public services, said 
recording media being enployed as the ID card 
issued by any one of the card issuing machines and 
havir^ stored thereon unique authentication data 
that is created by said subservient computer of the 

10 vending machine every time the ID card is used. 

22. A recording media as redted in claim 1 1 wherein 
said mater computer is a host compute exercising 
general control of operations of a banking agency. 

15 credit company, securities conrpany. insurance 
company, loan conpany and trust company issuing 
cards such as a cash card, loan card and aedit 
card ajnd said subservient computers are comput- 
ers contained in card issuing machines for issuing 

20 cards to individual customers, and which is 
employed as said card issued by any one of the 
card issuing machines and has stored thereon in 
magnetic form unique authentication data that is 
created by said subservient computer of ttie money 

25 issuing machine every time the card is used. 

23. An authentication-data verifying system including a 
plurality of conputers connected with each other 
via communication lines with one of said computers 

30 set to function as a master corrputer. each of tiie 
conputers subservient to said nr^ster computer 
comprising: 

reading means for reading unique authentica- 

35 tion data issued by any one of the subservient 

computers on the k^asis of information received 
from another of the sul5servient conputers. or 
reading unique autiientication data issued by 
any one of the subservient conputers and 

40 recorded on a recording media; 

transmitter means for transmitting the unique 
autiientication data read by said reading 
means to said master computer for sut>sequent 
collation thereby; and 

45 receiver means for receiving from said master 

conputer a result of collation between an issu- 
ance history of the unique authentication data 
by each of said subservient conputers regis- 
tered in said master computer and the unique 

50 authentication data transmitted by said trans- 

mitter means. 

24. An authentication-data verifying system including a 
plurality of conputers connected with each other 

55 via communication lines with one of said conputers 
set to function as a nrmster computer, said master 
computer comprising: 
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receiver means for receiving unique autherrti- 
cation data transnnitted by transmitter means of 
any one of the computers subservient to said 
master computer, said unique authentication 
data being issued by the subsavient computer 
and read by reading means of the sut>servient 
computer; and 

collator means for collating between the unique 
authentication data received by said receiver 
means and an issuance history of the unique 
authentication data by each of said subservient 
computers that is registered in said master 
computer: and 

transmitter means for transmitting a result of 
collation by said collator means to receiver 
means of the subservient conrputer. 

25. An authentication-data verifying system as recited 
in claim 23 wherein each of said subservient com- 
puters includes rejecting means which when a 
result of the collation by said collator means of said 
master computer indicates that the unique authen- 
tication data read by said reading means is not 
present in the issuance history, rejects subsequent 
access between said subservient computer and 
another of said subservient conputers or rejects 
use. in said subservient computer, of a recording 
media having stored thereon the unique authentica- 
tion data. 

26. An authentication-data verifying system as recited 
in claim 23 wherein each of said subservient com- 
puters includes authorizing means which when a 
result of the collation by said collator means of said 
master computer indicates that the unique authen- 
tication data read by said reading means is present 
in the issuance history, authorizes subsequent 
access between said subservient computer and 
another of said subservient computers or author- 
izes use, in said subservient computer, of a record- 
ing media having stored thereon the unique 
authentication data. 

27. An authentication^ata issuing system based on 
unique time, said authentication-data issuing sys- 
tem including a plurality of computers connected 
with each other via communication lines with one of 
said computers set to function as a master compu- 
ter, each of the computers subservient to said mas- 
ter conputer being accessed by another of the 
sut>servient conputers on the basis of unique 
authentication data authorized by said authorizing 
means recited in claim 26 or being connected with 
a recording media, having stored thereon the 
unique authentication data whose use is permitted 
by said authorizing means recited in daim 26, 

said master computer comprising a unique 
time generating device including time keeping 



means provided in said ma^er conputer for 
sequentially outputting unit time values at predeter- 
mined intends over a preset time-measuring 
period that begins at a given start point on a 

5 selected date and terntinates at a given future end 
point and accunrtulating means for sequentially 
accumulating said unit time values output by said 
time keeping means so as to constantly measure a 
changing elapsed time witHn the time-measuring 

10 period, 

each of said subservient computers com- 
prising: 

receiver means for, during communication with 
15 said master computer, receiving auth&itication 

data t>ased on an elapsed time measurement. 

corresponding to a given time point, indicated 

by said unique time generating device; 

issuer means for aeating and Issuing unique 
20 authentication data by imparting additional 

data, unique to said sut>servient conputer. to 

the autiientication data received via said 

receiver means; and 

transmitter means tor transmitting, to said mas- 
25 ter computer, the unique authentication data 

created and issued by said issuer means. 

28. An authentication-data issuing system as recited in 
daim 27 wherein said issuer means in each of said 

30 subservient conputers includes imparting means 
for inparting, to the received authentication data, 
tiie additional data unique to said subservient com- 
puter, and said imparting means includes a unique 
time generating device that includes time keeping 

35 means for sequentially outputting unit time values 
at predetermined intervals over a preset time- 
measuring period that begins at a given start point 
on a selected date and terminates at a given future 
end point and accumulating means for sequentially 

40 accumulating said unit time values output by said 
time keeping means so as to constantiy measure a 
changing elapsed time within the time-measuring 
period, and 

wherein said unique time generating device 

45 in said imparting means indicates elapsed time 
measurements over a time-measuring period that is 
different from time-measuring periods of tiie unique 
time generating devices provided in said master 
computer and other subservient conputers and 

50 aeates and issues unique authentication data 
peculiar to said subservient conputer. 

29. An authentication^iata issuing system based on 
unique time, said authentication-data issuing sys- 

55 tern induding a plurality of conputers connected 
with each other via communication lines witii one of 
said conputers set to function as a master conpu- 
ter, each of the computers subservient to said mas- 
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ter compute being accessed by another of the 
subservient corrputers on the basis of unique 
authentication data authorized by said authorizing 
means recited in daim 26 or being connected with 
a recording media, having stored thereon unique 
authentication data whose use is authorized by said 
authorizing means recited in claim 26, 

each of said subservient conputers com- 
prising: 

a unique time generating device for sequen- 
tially outputting unit time values at predeter- 
mined inten^ls over a preset time-measuring 
period that begins at a given start point on a 
selected date and terminates at a given future 
end point and accumulating means tor sequen- 
tially accumulating said unit time values output 
by said time keeping means so as to constantly 
measure a changing elapsed time within the 
time-measuring period; 

issuer means tor aeating and issuing unique- 
authentication-data updating data, correspond- 
ing to the authorized unique authentication 
data, on the basis of an elapsed time measure- 
ment indicated by said unique time generating 
device; and 

transmitter means tor transmitting, to said mas- 
ter computer, the unique-authentication-data 
updating created and issued by said issuer 
means. 

30. An authentication-data issuing system based on 
unique time, said authentication-data issuing sys- 
tem Including a plurality of computers connected 
with each other via conrununication lines with one of 
said computers set to function as a master compu- 
ter, each of the computers sttoservient to said mas- 
ter computer being accessed by another of the 
subservient computers on the basis of unique 
authentication data authorized by said authorizing 
means recited in daim 26 or being connected with 
a recording media, having stored thereon unique 
authentication data whose use is authorized by said 
authorizing means recited in claim 26. 
said master computer comprising: 

a unique time generating device including time 
keeping means tor sequentially outputting unit 
time values at predetermined intervals over a 
preset time-measuring period that begins at a 
given start point on a selected date and termi- 
nates at a given future erxJ point and accumu- 
lating means for sequentially accumulating 
said unit time values output by said time keep- 
ing means so as to constantly measure a 
changing elapsed time within the time-measur- 
ing period: 

b-ansmitter means tor transmitting to, any one 



of the subservient conputers, auth&rtication 
data based on an elapsed time measurement, 
corresponding to a given time point, indicated 
by said unique time generating device; and 

5 renewal means tor receiving unique^uthenti- 

cation-data updating data that is aeated and 
issued by the subservient conputer inparting 
additional data, unique to the subservient com- 
puter, to the authentication data from said 

10 transmitter means of said master computer, 

and altering the unique authentication data on 
the basis of the received unique-authentica- 
tion-data updating data to thereby update an 
issuance history of the unique authentication 

75 data by said sut)servient computer that is regis- 

tered in said master computer. 

31. An authentication-data issuing system based on 
unique time, said authentication-data issuing sys- 

20 tem induding a plurality of computers connected 
witii each otiier via communication lines witii one of 
said computers set to function as a master compu- 
ter, each of the conputers subservient to said mas- 
ter computer being accessed by another of the 

25 subservient computers on the basis of unique 
authentication data permitted by said authorizing 
means redted in claim 26 or being connected with 
a recording media, having stored thereon the 
unique authentication data whose use is permitted 

30 by said authorizing means recited in claim 26. 

said subservient computer including a 
unique time generating device which includes time 
keeping means for sequentially outputting unit time 
values at predetermined intervals over a preset 

35 time-measuring period that begins at a given start 
point on a selected date and terminates at a given 
future end point and accumulating means for 
sequentially accumulating said unit time values out- 
put by said time keeping means so as to constantiy 

40 measure a changing elapsed time witiiin tiie time- 
measuring period. 

said master conputer induding renewal 
means tor receiving unique-autiientication-data 
updating data tiiat is aeated and issued by the sub- 

45 servient computer in correspondence with the 
authorized unique authentication data and altering 
the unique authentication data on the basis of the 
received unique-authentication-data updating data 
to thereby update an issuance history of the unique 

50 authentication data by said sut)ser^ent computer 
that is registered in said master conputer. 

32. An authentication-data issuing system as recited in 
daim 30 or 31 wherein said sut>servient computer 

55 indudes renewal means, similar to said renewal 
means of said master conputer. tor altering the 
unique authentication data i^ed tor gaining author- 
ization to access to another of tiie computers or to 
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make use of the recording media, on the basis of 
the unique-authentication-data updating data. 

33. An authentication-data issuing system as redted in 
daim 32 wherein said renewal means of said sub- 
servient computer receives cteta relating to the issu- 
ance history updated by said renewal means of 
said master computer, in such a way that said sub- 
servient computer updates the unique authentica* 
tion data on the basis of the received data relating 
to the issuance history. 

34. An authentication-data issuing system as redted in 
daim 32 wherein the unique authentication data 
updated by said renewal means is stored in menv 
ory of the subservient computer, having accessed 
using last-issued unique authentication data, so 
that the updated unique authentication data is used 
for next access to another of the subservient com- 
puters. 

35. An authentication-data issuing system as redted in 
daim 32 wherein said renewal means alters last- 
issued unique authentication data, stored on the 
recording media used in said subservient compu- 
ter, on the basis of the created and issued unique- 
authentication-data updating data. 

36. An authentication-data issuing system as redted in 
any one of daims 14 to 17 wherein the unique 
authentication data created and issued by said sut>- 
servient computer contains the unique authentica- 
tion data updated by said renewal means redted in 
daim 34. 

37. A recording media having stored thereon unique 
authentication data updated by the unique-authen- 
tication-data updating data created and Issued in 
claim 35. 

38. An authentication-data issuing system as redted in 
claim 37 wherein the recording media having stored 
thereon updated unique authentication data is the 
ticket redted in claim 18, prepaid card recited in 
daim 19, electronic money recited in daim 20. ID 
card redted in daim 21 or card redted in daim 22. 
and wherein the subservient computer that stores 
the updated unique authentication data on said 
recording media is contained in or attached to an 
automatic ticket checker or a card readerAvriter for 
a prepaid card. ID card or electronic money. 

39. An authentication<lata issuing system based on 
unique time or recording media issued by said 
authentication-data issuing system as recited in 
claim 38 wherein tiie recording media used in said 
subservient computer is a ticket, electronic money, 
prepaid card or other c£ird. and wherein infomnation 



indicative of a cun-ent balance calculated by sub- 
tracting, from a money amount stored on said 
recording media, a money anrK)unt spent at the time 
of aeation of the updated unique authentication 
data. 
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